04-23-2018 05:46 AM - edited 03-01-2019 05:31 AM
Hi,
ACI: we are about to implement ACI and have stumbled across a problem - hoping someone here may be able to help.
We have a multipod setup over two sites connected with dark fibre, a checkpoint HA pair one at each site along with an internet breakout.
I was planning to connect these firewalls to a BD in ACI but need to be able to point the networks default route the the firewalls VIP address (for fail-over) and distribute this to over a separate WAN connection EIGRP.
is this currently possible? how????? :)
Solved! Go to Solution.
06-11-2018 08:53 AM
10-23-2018 04:43 AM
Hello,
we're trying the same setup. How is the routing on the Checkpoint configured? Specifically, which IP address are you using as next hop into the ACI networks and how do you make sure that this next hop is reachable if the firewall fails over or a leaf switch fails?
Thanks
10-23-2018 05:50 AM - edited 10-23-2018 06:19 AM
10-23-2018 10:22 PM
Thanks for your quick reply. The virtual IP works.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide